Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22492 | GEN005750 | SV-26813r1_rule | ECLP-1 | Medium |
Description |
---|
Failure to give group ownership of the NFS export configuration file to root or system groups provides the designated group owner and possible unauthorized users with the potential to change system configuration which could weaken the system's security posture. |
STIG | Date |
---|---|
SOLARIS 10 SPARC SECURITY TECHNICAL IMPLEMENTATION GUIDE | 2016-06-22 |
Check Text ( C-27801r1_chk ) |
---|
Check the group ownership of the NFS export configuration file. Procedure: # ls -lL /etc/dfs/dfstab If the file is not group-owned by root, bin, or sys, this is a finding. |
Fix Text (F-24056r1_fix) |
---|
Change the group ownership of the NFS export configuration file. Procedure: # chgrp root /etc/dfs/dfstab |